arXiv ScienceSearch

arXiv · 1002.2597

Fast algorithms for computing isogenies between ordinary elliptic curves in small characteristic

Abstract

The problem of computing an explicit isogeny between two given elliptic curves over F_q, originally motivated by point counting, has recently awaken new interest in the cryptology community thanks to the works of Teske and Rostovstev & Stolbunov. While the large characteristic case is well understood, only suboptimal algorithms are known in small characteristic; they are due to Couveignes, Lercier, Lercier & Joux and Lercier & Sirvent. In this paper we discuss the differences between them and run some comparative experiments. We also present the first complete implementation of Couveignes' second algorithm and present improvements that make it the algorithm having the best asymptotic complexity in the degree of the isogeny.

Explore related subjects

Keep this discovery

Explore connections, maps & timelines

BibTeXRIS

Luca De Feo. 2010-02-12. Fast algorithms for computing isogenies between ordinary elliptic curves in small characteristic. https://doi.org/10.1016/j.jnt.2010.07.003

Cite the original work for its findings. Save a collection to share your selection of sources.

KEEP EXPLORING

Related papers

On the Pair Correlation of Zeros of $L$-Functions for Non-CM Newforms in Shifted Ranges

We study the pair correlation between zeros of a shifted auxiliary $ L $-function attached to a non-CM newform, the scale of which is a fixed constant. We prove an unconditional asymptotic result for the pair correlation and introduce a simplicity hypothesis for the zeros of this function, which if true means that multiple zeros of the original $ L $-function cannot be separated by the same fixed distance. Our results provide macroscopic information in contrast to the pair correlation of the original $ L $-function which is of microscopic nature.

math.NT

Prime Solutions to a Binary Additive Equation and Mixed Moments of Character Sums

We obtain an asymptotic formula with a power-saving error term for counting the integer points $(a,b,c,d)$ in an expanding box that satisfy the determinant equation $x_1x_2-x_3x_4 =r$ for $r \neq 0 $ with two of entries to be prime. Finally, these estimates are applied to evaluate mixed fourth moments of Dirichlet character sums over integers and primes, yielding non-trivial bounds. The method involves the Poisson summation formula and the estimation for the average of the sums of the Kloosterman fractions over primes.

math.NT

On properness of moduli stacks of $D^{\times}$-shtukas over ramified legs

Given a maximal order $\mathcal{D}$ of a central division algebra $D$ over a global function field $F$, we prove an explicit sufficient condition for moduli stacks of $\mathcal{D}^\times$-shtukas to be proper over a finite field (modulo a suitable central action) in terms of the \emph{local invariants} of $D$ and \emph{bounds}. Our proof is a refinement of E.~Lau's result (Duke Math. J. \textbf{140} (2007)), which showed the properness of the \emph{leg morphism} (or \emph{characteristic morphism}) away from the ramification locus of $D$. %, by carefully measuring the contribution of ``ramified legs''. We also establish non-emptiness of Newton and Kottwitz--Rapoport strata for moduli stacks of $\mathcal{B}^\times$-shtukas, where $\mathcal{B}$ is a maximal order of a central simple algebra over $F$.

math.NT